Projects in Awesome Lists tagged with pentesting
A curated list of projects in awesome lists tagged with pentesting .
https://github.com/sherlock-project/sherlock
Hunt down social media accounts by username across social networks
cli cti cybersecurity forensics hacktoberfest information-gathering infosec linux osint pentesting python python3 reconnaissance redteam sherlock tools
Last synced: 12 May 2025
https://github.com/sqlmapproject/sqlmap
Automatic SQL injection and database takeover tool
database detection exploitation pentesting python sql-injection sqlmap takeover vulnerability-scanner
Last synced: 12 May 2025
https://github.com/bee-san/ciphey
⚡ Automatically decrypt encryptions without knowing the key or cipher, decode encodings, and crack hashes ⚡
artificial-intelligence cipher cpp cryptography ctf ctf-tools cyberchef-magic decryption deep-neural-network encodings encryptions hacking hacktoberfest hashes natural-language-processing pentesting python
Last synced: 11 Dec 2025
https://github.com/bee-san/rustscan
🤖 The Modern Port Scanner 🤖
docker hacking hacktoberfest networking nmap pentesting port rust scanning security security-tools
Last synced: 12 Dec 2025
https://github.com/smicallef/spiderfoot
SpiderFoot automates OSINT for threat intelligence and mapping your attack surface.
attacksurface cti cybersecurity footprinting hacking information-gathering information-security infosec intelligence-gathering osint osint-framework osint-reconnaissance osint-tool pentesting python recon security-tools threat-intelligence threatintel
Last synced: 14 May 2025
https://github.com/Sundowndev/hacker-roadmap
A collection of hacking tools, resources and references to practice ethical hacking.
exploitation frameworks hacking hacking-tool hacktools information-gathering penetration-testing pentest pentesting post-exploitation roadmap security web-hacking
Last synced: 13 Mar 2025
https://github.com/sundowndev/hacker-roadmap
A collection of hacking tools, resources and references to practice ethical hacking.
exploitation frameworks hacking hacking-tool hacktools information-gathering penetration-testing pentest pentesting post-exploitation roadmap security web-hacking
Last synced: 29 Sep 2025
https://github.com/maurosoria/dirsearch
Web path scanner
appsec brute bug-bounty bugbounty dirsearch enumeration fuzzer fuzzing hacking hacking-tool infosec penetration-testing pentest-tool pentesting python red-teaming redteam scanner security wordlist
Last synced: 14 May 2025
https://github.com/OWASP/owasp-mstg
The OWASP Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes technical processes for verifying the OWASP Mobile Security Weakness Enumeration (MASWE) weaknesses, which are in alignment with the OWASP MASVS.
android android-application compliancy-checklist dynamic-analysis hacking ios ios-app mast mastg mobile-app mobile-security mstg network-analysis pentesting reverse-engineering reverse-enginnering runtime-analysis static-analysis testing-cryptography
Last synced: 17 Aug 2025
https://github.com/qeeqbox/social-analyzer
API, CLI, and Web App for analyzing and finding a person's profile in 1000 social media \ websites
analysis analyzer cli information-gathering javascript nodejs nodejs-cli osint pentest pentesting person-profile profile python reconnaissance security-tools social-analyzer social-media sosint username
Last synced: 12 May 2025
https://github.com/owasp/owasp-mastg
The Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes the technical processes for verifying the controls listed in the OWASP Mobile Application Security Verification Standard (MASVS).
android android-application compliancy-checklist dynamic-analysis hacking ios ios-app mast mastg mobile-app mobile-security mstg network-analysis pentesting reverse-engineering reverse-enginnering runtime-analysis static-analysis testing-cryptography
Last synced: 14 May 2025
https://github.com/OWASP/owasp-mastg
The Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes the technical processes for verifying the controls listed in the OWASP Mobile Application Security Verification Standard (MASVS).
android android-application compliancy-checklist dynamic-analysis hacking ios ios-app mast mastg mobile-app mobile-security mstg network-analysis pentesting reverse-engineering reverse-enginnering runtime-analysis static-analysis testing-cryptography
Last synced: 19 Mar 2025
https://github.com/oj/gobuster
Directory/File, DNS and VHost busting tool written in Go
Last synced: 12 May 2025
https://github.com/juice-shop/juice-shop
OWASP Juice Shop: Probably the most modern and sophisticated insecure web application
24pullrequests application-security appsec ctf hacking hacktoberfest javascript owasp owasp-top-10 owasp-top-ten pentesting security vulnapp vulnerable
Last synced: 13 May 2025
https://bkimminich.github.io/juice-shop
OWASP Juice Shop: Probably the most modern and sophisticated insecure web application
24pullrequests application-security appsec ctf hacking hacktoberfest javascript owasp owasp-top-10 owasp-top-ten pentesting security vulnapp vulnerable
Last synced: 20 Mar 2025
https://github.com/hacktricks-wiki/hacktricks
Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.
hacking hacktricks peass pentesting
Last synced: 16 May 2025
https://github.com/infosecn1nja/red-teaming-toolkit
This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.
hacking infosec pentesting red-team
Last synced: 25 Jan 2026
https://github.com/OJ/gobuster
Directory/File, DNS and VHost busting tool written in Go
Last synced: 20 Mar 2025
https://github.com/infosecn1nja/Red-Teaming-Toolkit
This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.
hacking infosec pentesting red-team
Last synced: 30 Mar 2025
https://github.com/HackTricks-wiki/hacktricks
Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.
hacking hacktricks peass pentesting
Last synced: 28 Mar 2025
https://github.com/1n3/sn1per
Attack Surface Management Platform
attack-surface attack-surface-management attacksurface bugbounty-platform cybersecurity hacking hacking-tools osint-framework osint-tool penetration-testing pentest-scripts pentest-tool pentest-tools pentesting pentesting-tools security security-tools sn1per sn1per-professional
Last synced: 11 May 2025
https://github.com/n1nj4sec/pupy
Pupy is an opensource, cross-platform (Windows, Linux, OSX, Android) C2 and post-exploitation framework written in python and C
android backdoor linux mac-os meterpreter payload pentesting post-exploitation pupy python rat reflective-injection remote-access remote-admin-tool reverse-shell shell windows
Last synced: 10 Apr 2025
https://github.com/1N3/Sn1per
Attack Surface Management Platform
attack-surface attack-surface-management attacksurface bugbounty-platform cybersecurity hacking hacking-tools osint-framework osint-tool penetration-testing pentest-scripts pentest-tool pentest-tools pentesting pentesting-tools security security-tools sn1per sn1per-professional
Last synced: 24 Mar 2025
https://github.com/byt3bl33d3r/CrackMapExec
A swiss army knife for pentesting networks
active-directory networks pentesting powershell python windows
Last synced: 26 Mar 2025
https://github.com/byt3bl33d3r/crackmapexec
A swiss army knife for pentesting networks
active-directory networks pentesting powershell python windows
Last synced: 28 Mar 2025
https://github.com/blacklanternsecurity/bbot
The recursive internet scanner for hackers. 🧡
asm attack-surface-management automation bugbounty cli easm hacking neo4j osint osint-framework pentesting python recon recursion scanner subdomain-enumeration subdomain-scanner subdomains threat-intelligence threatintel
Last synced: 13 May 2025
https://github.com/yogeshojha/rengine
reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous monitoring, backed by a database, and simple yet intuitive User Interface. reNgine makes it easy for penetration testers to gather reconnaissance with minimal configuration and with the help of reNgine's correlation, it just makes recon effortless.
bug-bounty bugbounty hacking information-gathering infosec osint penetration-testing pentesting recon recon-engine reconnaissance rengine scanner scanner-web scanning security-tools
Last synced: 25 Jan 2026
https://github.com/thekingofduck/fuzzdicts
You Know, For WEB Fuzzing ! 日站用的字典。
directory fuzz-testing fuzzer fuzzing paramter password pentesting username wfuzz
Last synced: 14 May 2025
https://github.com/TheKingOfDuck/fuzzDicts
You Know, For WEB Fuzzing ! 日站用的字典。
directory fuzz-testing fuzzer fuzzing paramter password pentesting username wfuzz
Last synced: 05 Apr 2025
https://github.com/v1s1t0r1sh3r3/airgeddon
This is a multi-use bash script for Linux systems to audit wireless networks.
aircrack bash beef denial-of-service enterprise evil-twin hacking handshake linux multi-band pentesting pixie-dust pmkid security sniffing sslstrip wep wireless wpa-wpa2-wpa3 wps
Last synced: 30 Jan 2026
https://github.com/OWASP/wstg
The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.
application-security appsec best-practices bugbounty guide hacking hacktoberfest owasp penetration-testing pentesting security
Last synced: 30 Mar 2025
https://github.com/owasp/wstg
The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.
application-security appsec best-practices bugbounty guide hacking hacktoberfest owasp penetration-testing pentesting security
Last synced: 26 Mar 2025
https://github.com/firerpa/lamda
🤖 The most powerful Android RPA framework, the next generation of mobile automation robots.
adb agents ai android appium automation dynamic-analysis frida magisk mcp mcp-server mobile-security pentesting remote-control reverse-engineering security uiautomation uiautomator2 workflow xposed
Last synced: 10 May 2025
https://github.com/dstotijn/hetty
An HTTP toolkit for security research.
bugbounty http infosec mitm pentesting proxy
Last synced: 13 May 2025
https://github.com/trickest/cve
Gather and update all available and newest CVEs with their PoC.
cve cve-poc exploit hacking infosec latest-cve penetration-testing pentesting poc red-team security security-tools software-security software-vulnerabilities software-vulnerability vulnerabilities vulnerability
Last synced: 17 Oct 2025
https://github.com/six2dez/reconftw
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
bug-bounty bugbounty dns fuzzing hacking nuclei osint penetration-testing pentest pentest-tool pentesting recon reconnaissance scanner security security-tools subdomain vulnerabilities
Last synced: 13 May 2025
https://github.com/0x4m4/hexstrike-ai
HexStrike AI MCP Agents is an advanced MCP server that lets AI agents (Claude, GPT, Copilot, etc.) autonomously run 150+ cybersecurity tools for automated pentesting, vulnerability discovery, bug bounty automation, and security research. Seamlessly bridge LLMs with real-world offensive security capabilities.
0x4m4 ai ai-agents ai-cybersecurity ai-hacking ai-penetration-testing ai-security-tool artificial-intelligence ctf-tools generative-ai hexstrike kali-linux kali-tools llm llm-integration mcp mcp-server mcp-tools pentesting pentesting-tools
Last synced: 21 Jan 2026
https://github.com/j3ssie/osmedeus
A Modern Orchestration Engine for Security
attack-surface-management bug-bounty bugbounty go hacking hacking-tool osint pentesting reconnaissance security security-tools workflow-engine workflows
Last synced: 24 Jan 2026
https://github.com/roguemaster/flipperzero-firmware-wplugins
RogueMaster Flipper Zero Firmware
armv7m ble bluetooth-low-energy cfw custom-firmware flipper flipper-zero flipperzer0 flipperzero games hacker jailbreak onewire pentesting roguemaster security-tools stm32
Last synced: 07 Oct 2025
https://github.com/S1ckB0y1337/Active-Directory-Exploitation-Cheat-Sheet
A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.
active-directory active-directory-cheatsheet active-directory-exploitation activedirectory attack cheat cheat-sheet cheatsheet enumeration exploitation hacking hacking-cheasheet hacking-tool hacking-tools penetration-testing pentesting privilege-escalation security windows windows-active-directory
Last synced: 01 Apr 2025
https://github.com/s1ckb0y1337/active-directory-exploitation-cheat-sheet
A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.
active-directory active-directory-cheatsheet active-directory-exploitation activedirectory attack cheat cheat-sheet cheatsheet enumeration exploitation hacking hacking-cheasheet hacking-tool hacking-tools penetration-testing pentesting privilege-escalation security windows windows-active-directory
Last synced: 22 Aug 2025
https://github.com/promptfoo/promptfoo
Test your prompts, agents, and RAGs. Red teaming, pentesting, and vulnerability scanning for LLMs. Compare performance of GPT, Claude, Gemini, Llama, and more. Simple declarative configs with command line and CI/CD integration.
ci ci-cd cicd evaluation evaluation-framework llm llm-eval llm-evaluation llm-evaluation-framework llmops pentesting prompt-engineering prompt-testing prompts rag red-teaming testing vulnerability-scanners
Last synced: 21 Jan 2026
https://github.com/rmusser01/infosec_reference
An Information Security Reference That Doesn't Suck; https://rmusser.net/git/admin-2/Infosec_Reference for non-MS Git hosted version.
blueteam forensics hacking hacking-simulator hacktoberfest hacktoberfest2021 information-security infosec infosec-reference linux osx penetration-testing pentesting privilege-escalation privilege-escalation-exploits red-team references reverse-engineering windows
Last synced: 14 May 2025
https://github.com/rmusser01/Infosec_Reference
An Information Security Reference That Doesn't Suck; https://rmusser.net/git/admin-2/Infosec_Reference for non-MS Git hosted version.
blueteam forensics hacking hacking-simulator hacktoberfest hacktoberfest2021 information-security infosec infosec-reference linux osx penetration-testing pentesting privilege-escalation privilege-escalation-exploits red-team references reverse-engineering windows
Last synced: 26 Mar 2025
https://github.com/RogueMaster/flipperzero-firmware-wPlugins
RogueMaster Flipper Zero Firmware
armv7m ble bluetooth-low-energy cfw custom-firmware flipper flipper-zero flipperzer0 flipperzero games hacker jailbreak onewire pentesting roguemaster security-tools stm32
Last synced: 29 Mar 2025
https://github.com/ihebski/defaultcreds-cheat-sheet
One place for all the default credentials to assist the Blue/Red teamers activities on finding devices with default password 🛡️
blueteam bugbounty cheatsheet credentials-gathering cybersecurity default-password exploit infosec offensive-security pentest pentesting
Last synced: 25 Mar 2025
https://github.com/ihebski/DefaultCreds-cheat-sheet
One place for all the default credentials to assist the Blue/Red teamers activities on finding devices with default password 🛡️
blueteam bugbounty cheatsheet credentials-gathering cybersecurity default-password exploit infosec offensive-security pentest pentesting
Last synced: 02 Apr 2025
https://github.com/androguard/androguard
Reverse engineering and pentesting for Android applications
android dalvik dex odex pentesting reverse-engineering
Last synced: 12 May 2025
https://github.com/urbanadventurer/whatweb
Next generation web scanner
application-security appsec hacking hacking-tools kali-linux network-security owasp penetration-test penetration-testing penetration-testing-tools pentest pentesting pentesting-tools recon ruby scanner security security-tools web web-hacking
Last synced: 14 May 2025
https://github.com/urbanadventurer/WhatWeb
Next generation web scanner
application-security appsec hacking hacking-tools kali-linux network-security owasp penetration-test penetration-testing penetration-testing-tools pentest pentesting pentesting-tools recon ruby scanner security security-tools web web-hacking
Last synced: 14 Mar 2025
https://github.com/infoslack/awesome-web-hacking
A list of web application security
appsec hacking hacking-tools metasploit owasp penetration-testing pentesting scanner security vulnerabilities vulnerability web-hacking web-security
Last synced: 27 Jan 2026
https://github.com/infobyte/faraday
Open Source Vulnerability Management Platform
appsec burpsuite collaboration continuous-scanning cve cybersecurity devops devsecops infosec nessus nmap orchestration penetration-testing pentesting security security-audit security-automation vulnerability vulnerability-management vulnerability-scanners
Last synced: 12 May 2025
https://github.com/dominicbreuker/pspy
Monitor linux processes without root permissions
ctf enumeration golang pentesting privesc security
Last synced: 14 May 2025
https://github.com/hak5/usbrubberducky-payloads
The Official USB Rubber Ducky Payload Repository
badusb ducky-payloads duckyscript hacking-tools hak5 hak5-rubber-ducky hid hotplug keystroke-injection payloads pentesting security-tools usb-rubber-ducky usbrubberducky
Last synced: 17 Jan 2026
https://github.com/j3ssie/Osmedeus
A Workflow Engine for Offensive Security
attack-surface attack-surface-management bug-bounty bugbounty go golang hacking hacking-tool information-gathering osint penetration-testing pentest-tool pentesting reconnaissance scanning security security-tools
Last synced: 13 Mar 2025
https://github.com/DominicBreuker/pspy
Monitor linux processes without root permissions
ctf enumeration golang pentesting privesc security
Last synced: 04 Apr 2025
https://github.com/azeemidrisi/phonesploit-pro
An all-in-one hacking tool to remotely exploit Android devices using ADB and Metasploit-Framework to get a Meterpreter session.
adb android android-debug-bridge android-hacking collaborate cybersecurity exploit hack hacking hacking-script hacking-tool hacktoberfest metasploit-framework meterpreter penetration-testing pentest-tool pentesting phonesploit phonesploit-pro python
Last synced: 10 Aug 2025
https://github.com/commixproject/commix
Automated All-in-One OS Command Injection Exploitation Tool.
bugbounty command-injection commix detection exploitation open-source pentesting python takeover vulnerability-scanner
Last synced: 13 May 2025
https://github.com/AzeemIdrisi/PhoneSploit-Pro
An all-in-one hacking tool to remotely exploit Android devices using ADB and Metasploit-Framework to get a Meterpreter session.
adb android android-debug-bridge android-hacking collaborate cybersecurity exploit hack hacking hacking-script hacking-tool hacktoberfest metasploit-framework meterpreter penetration-testing pentest-tool pentesting phonesploit phonesploit-pro python
Last synced: 30 Mar 2025
https://github.com/OlivierLaflamme/Cheatsheet-God
Penetration Testing Reference Bank - OSCP / PTP & PTX Cheatsheet
awesome cheatsheet cheatsheet-god hacking hacking-code hacking-tool howto-tutorial information-security oscp oscp-journey oscp-tools oscp5 penetration penetration-test penetration-testing pentesting refresher security security-tools security-vulnerability
Last synced: 13 Mar 2025
https://github.com/olivierlaflamme/cheatsheet-god
Penetration Testing Reference Bank - OSCP / PTP & PTX Cheatsheet
awesome cheatsheet cheatsheet-god hacking hacking-code hacking-tool howto-tutorial information-security oscp oscp-journey oscp-tools oscp5 penetration penetration-test penetration-testing pentesting refresher security security-tools security-vulnerability
Last synced: 28 Sep 2025
https://github.com/tanprathan/MobileApp-Pentest-Cheatsheet
The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration testing topics.
android-application dynamic-analysis ios-app mobile-app network-analysis pentesting reverse-engineers runtime-analysis static-analysis
Last synced: 19 Mar 2025
https://github.com/hackplayers/evil-winrm
The ultimate WinRM shell for hacking/pentesting
docker evil-winrm hacking kerberos pass-the-hash pentest pentesting pentesting-windows powershell psrp remote-management ruby shell win-rm winrm
Last synced: 13 May 2025
https://github.com/LyleMi/Learn-Web-Hacking
Study Notes For Web Hacking / Web安全学习笔记
hacking penetration-testing pentesting security study-notes web-hacking
Last synced: 04 Apr 2025
https://github.com/jassics/security-study-plan
Complete Practical Study Plan to become a successful cybersecurity engineer based on roles like Pentest, AppSec, Cloud Security, DevSecOps and so on...
api-security application-security appsec appsec-tutorials aws-security azure-security cybersecurity cybersecurity-education devsecops-university gcp-security infosec pentesting security-testing study-guide study-plan study-planner
Last synced: 09 Feb 2026
https://github.com/madhuakula/kubernetes-goat
Kubernetes Goat is a "Vulnerable by Design" cluster environment to learn and practice Kubernetes security using an interactive hands-on playground 🚀
blueteam cloud-native cloud-security cloudsecurity container container-security devsecops docker hacking infrastructure k8s kubernetes kubernetes-goat kubernetes-security owasp pentesting redteam security vulnerable-app
Last synced: 13 May 2025
https://github.com/lylemi/learn-web-hacking
Study Notes For Web Hacking / Web安全学习笔记
hacking penetration-testing pentesting security study-notes web-hacking
Last synced: 02 Apr 2025
https://github.com/hakluke/hakrawler
Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application
bugbounty crawling hacking osint pentesting recon reconnaissance
Last synced: 14 May 2025
https://github.com/tanprathan/mobileapp-pentest-cheatsheet
The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration testing topics.
android-application dynamic-analysis ios-app mobile-app network-analysis pentesting reverse-engineers runtime-analysis static-analysis
Last synced: 25 Feb 2025
https://github.com/Hackplayers/evil-winrm
The ultimate WinRM shell for hacking/pentesting
docker evil-winrm hacking kerberos pass-the-hash pentest pentesting pentesting-windows powershell psrp remote-management ruby shell win-rm winrm
Last synced: 12 Apr 2025
https://github.com/undeadsec/socialfish
Phishing Tool & Information Collector
educational pentest pentesting phishing python undead
Last synced: 13 May 2025
https://github.com/bluscreenofjeff/red-team-infrastructure-wiki
Wiki to collect Red Team infrastructure hardening resources
cobalt-strike empire infrastructure pentesting red-team redirector
Last synced: 30 Oct 2025
https://github.com/ullaakut/cameradar
Cameradar hacks its way into RTSP videosurveillance cameras
cameras cctv hacking hacking-tool infosec netsec penetration-testing pentesting rtsp security security-tools
Last synced: 01 Feb 2026
https://github.com/UndeadSec/SocialFish
Phishing Tool & Information Collector
educational pentest pentesting phishing python undead
Last synced: 27 Mar 2025
https://github.com/bluscreenofjeff/Red-Team-Infrastructure-Wiki
Wiki to collect Red Team infrastructure hardening resources
cobalt-strike empire infrastructure pentesting red-team redirector
Last synced: 16 Mar 2025
https://github.com/arismelachroinos/lscript
The LAZY script will make your life easier, and of course faster.
antivirus-evasion bypass-antivirus bypass-av eternalblue-doublepulsar-metasploit kali-linux kali-scripts metasploit-framework payload payload-generator penetration-testing pentest-tool pentesting pixie-dust shell-script sqlinjection wifi-password wifi-testing wifiphisher wpa-cracker wpa2-handshake
Last synced: 15 May 2025
https://github.com/reverseclabs/drozer
The Leading Security Assessment Framework for Android.
android drozer java mobile mobsec mwr pentesting security withsecure
Last synced: 11 May 2025
https://github.com/withsecurelabs/drozer
The Leading Security Assessment Framework for Android.
android drozer java mobile mobsec mwr pentesting security withsecure
Last synced: 08 May 2025
https://github.com/FSecureLABS/drozer
The Leading Security Assessment Framework for Android.
android drozer java mobile mobsec mwr pentesting security withsecure
Last synced: 02 May 2025
https://github.com/pennyw0rth/netexec
The Network Execution Tool
active-directory hacking infosec infosectools networks pentest pentest-tool pentest-tools pentesting python python3 red-team security security-tools windows
Last synced: 13 May 2025
https://github.com/WithSecureLabs/drozer
The Leading Security Assessment Framework for Android.
android drozer java mobile mobsec mwr pentesting security withsecure
Last synced: 01 Apr 2025
https://github.com/Ullaakut/cameradar
Cameradar hacks its way into RTSP videosurveillance cameras
cameras cctv hacking hacking-tool infosec netsec penetration-testing pentesting rtsp security security-tools
Last synced: 14 Mar 2025
https://github.com/mantvydasb/redteaming-tactics-and-techniques
Red Teaming Tactics and Techniques
offensive-security oscp pentesting redteam redteam-infrastructure redteaming
Last synced: 14 May 2025
https://github.com/mantvydasb/RedTeaming-Tactics-and-Techniques
Red Teaming Tactics and Techniques
offensive-security oscp pentesting redteam redteam-infrastructure redteaming
Last synced: 30 Mar 2025
https://github.com/skerkour/black-hat-rust
Applied offensive security with Rust - https://kerkour.com/black-hat-rust
audit beacon bug-bounty bug-hunting c2 hacking infosec offensive-security pentest pentesting phishing red-team rust scanner security security-tools shellcodes trojan virus wasm
Last synced: 14 May 2025
https://github.com/owasp/nettacker
Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management
automation bruteforce cve hacking-tools information-gathering network-security owasp penetration-testing penetration-testing-framework pentesting pentesting-tools portscanner python recon scanner security security-tools vulnerability-management vulnerability-scanner vulnerability-scanners
Last synced: 12 May 2025
https://github.com/t3l3machus/villain
Villain is a high level stage 0/1 C2 framework that can handle multiple reverse TCP & HoaxShell-based shells, enhance their functionality with additional features (commands, utilities) and share them among connected sibling servers (Villain instances running on different machines).
c2 cybersecurity hacking hacking-tool offensive-security open-source penetration-testing penetration-testing-tools pentest pentesting readteaming redteam redteam-tools
Last synced: 13 May 2025
https://github.com/t3l3machus/Villain
Villain is a high level stage 0/1 C2 framework that can handle multiple reverse TCP & HoaxShell-based shells, enhance their functionality with additional features (commands, utilities) and share them among connected sibling servers (Villain instances running on different machines).
c2 cybersecurity hacking hacking-tool offensive-security open-source penetration-testing penetration-testing-tools pentest pentesting readteaming redteam redteam-tools
Last synced: 30 Mar 2025
https://github.com/knownsec/pocsuite3
pocsuite3 is an open-sourced remote vulnerability testing framework developed by the Knownsec 404 Team.
pentesting python security security-tools
Last synced: 19 Jun 2025
https://github.com/leebaird/discover
Custom bash scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload creation using Metasploit. For use with Kali Linux.
bash enumeration information-gathering kali-linux metasploit nmap osint payload-generator pentesting recon reconnaissance red-team scanning
Last synced: 13 May 2025
https://github.com/ysrc/xunfeng
巡风是一款适用于企业内网的漏洞快速应急,巡航扫描系统。
exploits infosec pentesting scanner security security-audit vulnerability-assessment vulnerability-detection vulnerability-scanners
Last synced: 14 May 2025
https://github.com/diego-treitos/linux-smart-enumeration
Linux enumeration tool for pentesting and CTFs with verbosity levels
ctfs hacking hackthebox linux-enumeration oscp pentesting privesc privilege-escalation
Last synced: 14 May 2025
https://github.com/OWASP/Nettacker
Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management
automation bruteforce cve cves hacking-tools information-gathering network-analysis owasp penetration-testing penetration-testing-framework pentesting pentesting-tools portscanner python scanner security security-tools vulnerability-management vulnerability-scanner vulnerability-scanners
Last synced: 23 Mar 2025
https://github.com/mr-xn/burpsuite-collections
有关burpsuite的插件(非商店),文章以及使用技巧的收集(此项目不再提供burpsuite破解文件,如需要请在博客mrxn.net下载)---Collection of burpsuite plugins (non-stores), articles and tips for using Burpsuite, no crack version file
burp-extensions burp-requests burpsuite burpsuite-extender burpsuite-java burpsuite-tools burpsuite-xkeys hackbar hacktool j2eescan jar pentest-tool pentesting python-burp sendto shiro-burp sqlmap waf
Last synced: 26 Oct 2025
https://github.com/s3cur3th1ssh1t/winpwn
Automation for internal Windows Penetrationtest / AD-Security
adsecurity automation exploitation pentest-tool pentesting powershell powersploit privilege-escalation recon redteam
Last synced: 13 May 2025
https://github.com/Mr-xn/BurpSuite-collections
有关burpsuite的插件(非商店),文章以及使用技巧的收集(此项目不再提供burpsuite破解文件,如需要请在博客mrxn.net下载)---Collection of burpsuite plugins (non-stores), articles and tips for using Burpsuite, no crack version file
burp-extensions burp-requests burpsuite burpsuite-extender burpsuite-java burpsuite-tools burpsuite-xkeys hackbar hacktool j2eescan jar pentest-tool pentesting python-burp sendto shiro-burp sqlmap waf
Last synced: 13 Mar 2025
https://github.com/zhzyker/vulmap
Vulmap 是一款 web 漏洞扫描和验证工具, 可对 webapps 进行漏洞扫描, 并且具备漏洞验证功能
cve cve-2016-4437 cve-2020-13942 cve-2020-14882 cve-2020-17518 cve-2020-2555 cve-2020-2883 cve-2021-21972 cve-2021-21975 cve-2021-26855 cve-2021-27065 cve-2021-3129 exploit pentest-tool pentesting rce scanner security security-tools vulnerabilities
Last synced: 15 May 2025
https://github.com/p1ngul1n0/blackbird
An OSINT tool to search for accounts by username and email in social networks.
cybersecurity osint pentesting python
Last synced: 13 May 2025